First published: Fri Aug 30 2024(Updated: )
Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier. When Telnet function of the product is enabled, a remote attacker may login to the product without authentication and alter the product's settings.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Elecom Wab-i1750-ps Firmware | <=1.5.10 | |
Elecom Wab-i1750-ps |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-39300 is considered a high-severity vulnerability due to the lack of authentication allowing unauthorized access.
To fix CVE-2024-39300, disable the Telnet function or upgrade to a version later than v1.5.10.
CVE-2024-39300 affects the Elecom WAB-I1750-PS with firmware version 1.5.10 and earlier.
An attacker exploiting CVE-2024-39300 can log in without authentication and modify the product's settings.
A temporary workaround for CVE-2024-39300 is to disable the Telnet function until a patch is applied.